[Git][security-tracker-team/security-tracker][master] 2 commits: Add information on CVE-2019-19481

2019-12-02 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a337ae28 by Salvatore Bonaccorso at 2019-12-03T07:21:14Z Add information on CVE-2019-19481 - - - - - cf8d8635 by Salvatore Bonaccorso at 2019-12-03T07:24:00Z Update status on

[Git][security-tracker-team/security-tracker][master] Mark CVE-2019-17402/exiv2 as no-dsa

2019-12-02 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 837aaacf by Salvatore Bonaccorso at 2019-12-03T07:06:25Z Mark CVE-2019-17402/exiv2 as no-dsa - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Update status for CVE-2019-17402/exiv2

2019-12-02 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: c95560c5 by Salvatore Bonaccorso at 2019-12-03T05:31:06Z Update status for CVE-2019-17402/exiv2 - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Annotate CVE-2019-19481/opensc as not affecting jessie

2019-12-02 Thread Roberto C . Sánchez
Roberto C. Sánchez pushed to branch master at Debian Security Tracker / security-tracker Commits: d22bcb13 by Roberto C. Sánchez at 2019-12-03T03:38:57Z Annotate CVE-2019-19481/opensc as not affecting jessie - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Annotate CVE-2019-19480/opensc as not affecting jessie

2019-12-02 Thread Roberto C . Sánchez
Roberto C. Sánchez pushed to branch master at Debian Security Tracker / security-tracker Commits: aa571a0a by Roberto C. Sánchez at 2019-12-03T03:33:52Z Annotate CVE-2019-19480/opensc as not affecting jessie - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] 2 commits: LTS/add and claim opensc

2019-12-02 Thread Roberto C . Sánchez
Roberto C. Sánchez pushed to branch master at Debian Security Tracker / security-tracker Commits: 637c4a16 by Roberto C. Sánchez at 2019-12-03T03:18:49Z LTS/add and claim opensc - - - - - 47150c01 by Roberto C. Sánchez at 2019-12-03T03:20:34Z LTS/php-horde, php-horde-trean status updates -

[Git][security-tracker-team/security-tracker][master] Reserve DLA-2019-1 for exiv2

2019-12-02 Thread Dylan Aïssi
Dylan Aïssi pushed to branch master at Debian Security Tracker / security-tracker Commits: 860d619e by Dylan Aïssi at 2019-12-02T22:55:58Z Reserve DLA-2019-1 for exiv2 - - - - - 2 changed files: - data/DLA/list - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] stretch/buster triage

2019-12-02 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 08844222 by Moritz Muehlenhoff at 2019-12-02T21:48:44Z stretch/buster triage - - - - - 2 changed files: - data/CVE/list - data/dsa-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] 2 commits: Add information around introducing issue for CVE-2019-19118

2019-12-02 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 9f3203e7 by Salvatore Bonaccorso at 2019-12-02T20:45:25Z Add information around introducing issue for CVE-2019-19118 Only after 2.1 the issue was introduced, cf. [1]. [1]

[Git][security-tracker-team/security-tracker][master] Add bug for CVE-2019-19118 in python-django.

2019-12-02 Thread Chris Lamb
Chris Lamb pushed to branch master at Debian Security Tracker / security-tracker Commits: 30513df4 by Chris Lamb at 2019-12-02T20:26:25Z Add bug for CVE-2019-19118 in python-django. - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Process one NFU

2019-12-02 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 78bcc745 by Salvatore Bonaccorso at 2019-12-02T20:13:42Z Process one NFU - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2019-12-02 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: e9d78110 by security tracker role at 2019-12-02T20:10:36Z automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] TALOS-2019-0958 report has CVE-2019-5164 assigned

2019-12-02 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: a160747f by Salvatore Bonaccorso at 2019-12-02T20:08:49Z TALOS-2019-0958 report has CVE-2019-5164 assigned - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Add notes on mitigation for shadowsocks-libev issue

2019-12-02 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 1a5265d3 by Salvatore Bonaccorso at 2019-12-02T20:06:30Z Add notes on mitigation for shadowsocks-libev issue The ss-manager should in any case never be exposed to pubic and anyone using

[Git][security-tracker-team/security-tracker][master] 2 commits: Remove note referring only to the upstream Changelog.md

2019-12-02 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 8ee13f88 by Salvatore Bonaccorso at 2019-12-02T19:52:31Z Remove note referring only to the upstream Changelog.md - - - - - 2c7bcf84 by Salvatore Bonaccorso at 2019-12-02T19:56:30Z Add Debian

[Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Claim python-django.

2019-12-02 Thread Chris Lamb
Chris Lamb pushed to branch master at Debian Security Tracker / security-tracker Commits: 03fd9b05 by Chris Lamb at 2019-12-02T12:47:37Z data/dla-needed.txt: Claim python-django. - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] data/dla-needed.txt: Triage python-django for jessie

2019-12-02 Thread Chris Lamb
Chris Lamb pushed to branch master at Debian Security Tracker / security-tracker Commits: f428b338 by Chris Lamb at 2019-12-02T12:19:32Z data/dla-needed.txt: Triage python-django for jessie - - - - - 1 changed file: - data/dla-needed.txt Changes: =

[Git][security-tracker-team/security-tracker][master] new librabbitmq issue

2019-12-02 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 17c21eb7 by Moritz Muehlenhoff at 2019-12-02T10:05:39Z new librabbitmq issue NFUs - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] semi-automatic unclaim after 2 weeks of inactivity

2019-12-02 Thread Holger Levsen
Holger Levsen pushed to branch master at Debian Security Tracker / security-tracker Commits: d4ee5180 by Holger Levsen at 2019-12-02T09:42:35Z semi-automatic unclaim after 2 weeks of inactivity Signed-off-by: Holger Levsen hol...@layer-acht.org - - - - - 1 changed file: -

[Git][security-tracker-team/security-tracker][master] Add upstream commit reference for CVE-2019-19308

2019-12-02 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: fb6c0fc3 by Salvatore Bonaccorso at 2019-12-02T09:20:43Z Add upstream commit reference for CVE-2019-19308 - - - - - 1 changed file: - data/CVE/list Changes:

[Git][security-tracker-team/security-tracker][master] Patch for gnome-font-viewer and gnome-sushi accepted/landed upstream.

2019-12-02 Thread Chris Lamb
) + NOTE: 20191202: Accepted by upstream (lamby) -- gnome-sushi (Chris Lamb) NOTE: 20191129: same issue as in gnome-font-viewer, should be fixed together (sunweaver) NOTE: 20191201: Created upstream patch, waiting for upstream. (lamby) + NOTE: 20191202: Accepted by upstream (lamby

[Git][security-tracker-team/security-tracker][master] Add CVE-2019-194{79,80,81}/opensc

2019-12-02 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 15ba5e64 by Salvatore Bonaccorso at 2019-12-02T08:32:47Z Add CVE-2019-194{79,80,81}/opensc - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] Add CVE-2019-19492/freeswitch (itp'ed)

2019-12-02 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: b3b36043 by Salvatore Bonaccorso at 2019-12-02T08:28:24Z Add CVE-2019-19492/freeswitch (itped) - - - - - 1 changed file: - data/CVE/list Changes: =

[Git][security-tracker-team/security-tracker][master] 2 commits: Adjust upstream issue reference for TALOS-2019-0958 report

2019-12-02 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 6bdeadb2 by Salvatore Bonaccorso at 2019-12-02T08:25:38Z Adjust upstream issue reference for TALOS-2019-0958 report - - - - - aed66574 by Salvatore Bonaccorso at 2019-12-02T08:26:09Z Add

[Git][security-tracker-team/security-tracker][master] add second shadowsocks CVE

2019-12-02 Thread Moritz Muehlenhoff
Moritz Muehlenhoff pushed to branch master at Debian Security Tracker / security-tracker Commits: 32420445 by Moritz Muehlenhoff at 2019-12-02T08:15:31Z add second shadowsocks CVE - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] automatic update

2019-12-02 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: 4140f30e by security tracker role at 2019-12-02T08:10:30Z automatic update - - - - - 1 changed file: - data/CVE/list Changes: = data/CVE/list

[Git][security-tracker-team/security-tracker][master] Add CVE-2019-5163/shadowsocks-libev

2019-12-02 Thread Salvatore Bonaccorso
Salvatore Bonaccorso pushed to branch master at Debian Security Tracker / security-tracker Commits: dfb2ba03 by Salvatore Bonaccorso at 2019-12-02T08:06:53Z Add CVE-2019-5163/shadowsocks-libev - - - - - 1 changed file: - data/CVE/list Changes: =